Last updated: February 16, 2026
Conteqx is committed to protecting the privacy and data rights of individuals in the European Economic Area (EEA). This page outlines our compliance with the General Data Protection Regulation (GDPR).
As a data controller and data processor, Conteqx adheres to the principles of the GDPR. We process personal data lawfully, fairly, and transparently. We collect only the data necessary for providing our service and retain it only for as long as required.
We process personal data under the following legal bases:
Processing necessary to provide the Conteqx service as agreed in our Terms of Service.
Processing necessary for our legitimate interests, such as improving our service and ensuring security.
Processing based on your explicit consent, such as marketing communications.
Processing necessary to comply with applicable laws and regulations.
You can request a copy of all personal data we hold about you. We will provide this within 30 days of your request.
If any of your personal data is inaccurate or incomplete, you can request that we correct it.
You can request the deletion of your personal data. We will erase your data within 30 days, except where we have a legal obligation to retain it.
You can request your data in a structured, commonly used, machine-readable format (JSON or CSV).
You can request that we limit the processing of your personal data in certain circumstances.
You can object to the processing of your personal data for specific purposes, including direct marketing.
Where processing is based on consent, you can withdraw your consent at any time without affecting the lawfulness of prior processing.
You have the right to lodge a complaint with a supervisory authority in your country of residence if you believe your data rights have been violated.
We maintain a Record of Processing Activities (ROPA) as required by Article 30 of the GDPR. Our key processing activities include:
When transferring personal data outside the EEA, we ensure adequate safeguards are in place through:
We use the following sub-processors to provide our service:
| Provider | Purpose | Location |
|---|---|---|
| Clerk | Authentication | United States |
| Stripe | Payment processing | United States |
| Supabase | Database & storage | United States |
| Vercel | Hosting & CDN | Global |
In the event of a personal data breach that poses a risk to your rights and freedoms, we will:
To exercise your rights or for any GDPR-related inquiries, please contact our Data Protection Officer: